Vulnerability index

Browse CVEs

19 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Idexpert CRITICAL 9.8
CVE-2026-3000

IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the …

Fix: after 2.8.4.250925
Fix from $2,300 2026-03-02
Idexpert CRITICAL 9.8
CVE-2026-2999

IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the …

Fix: after 2.8.4.250925
Fix from $2,300 2026-03-02
Tcb Servisign HIGH 8.8
CVE-2024-40721

The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visit…

Fix: 1.0.24.0318+
Fix from $1,950 2024-08-02
Tcb Servisign HIGH 8.8
CVE-2024-40720

The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visit…

Fix: 1.0.24.0318+
Fix from $1,950 2024-08-02
Tcb Servisign MEDIUM 6.5
CVE-2024-40719

The encryption strength of the authorization keys in CHANGING Information Technology TCBServiSign Windows Version is insufficient. When a remote atta…

Fix: 1.0.24.0318+
Fix from $1,600 2024-08-02
Megaservisignadapter CRITICAL 9.8
CVE-2022-39060

ChangingTech MegaServiSignAdapter component has a vulnerability of improper input validation. An unauthenticated remote attacker can exploit this vul…

Fix: 1.0.22.1004+
Fix from $2,300 2023-01-31
Megaservisignadapter MEDIUM 6.5
CVE-2022-39061

ChangingTech MegaServiSignAdapter component has a vulnerability of Out-of-bounds Read due to insufficient validation for parameter length. An unauthe…

Fix: 1.0.22.1004+
Fix from $1,600 2023-01-31
Megaservisignadapter HIGH 7.5
CVE-2022-39059

ChangingTech MegaServiSignAdapter component has a path traversal vulnerability within its file reading function. An unauthenticated remote attacker c…

Fix: 1.0.22.1004+
Fix from $1,950 2023-01-31
Servisign HIGH 8.8
CVE-2022-46304

ChangingTec ServiSign component has insufficient filtering for special characters in the connection response parameter. An unauthenticated remote att…

Mitigation only
Fix from $1,950 2023-01-03
Servisign HIGH 7.8
CVE-2022-46306

ChangingTec ServiSign component has a path traversal vulnerability due to insufficient filtering for special characters in the DLL file path. An unau…

Mitigation only
Fix from $1,950 2023-01-03
Servisign MEDIUM 6.5
CVE-2022-46305

ChangingTec ServiSign component has a path traversal vulnerability. An unauthenticated LAN attacker can exploit this vulnerability to bypass authenti…

Mitigation only
Fix from $1,600 2023-01-03
Rava Certificate Validation System CRITICAL 9.8
CVE-2022-39056

RAVA certificate validation system has insufficient validation for user input. An unauthenticated remote attacker can inject arbitrary SQL command to…

Mitigation only
Fix from $2,300 2022-10-18
Rava Certificate Validation System HIGH 7.5
CVE-2022-39058

RAVA certification validation system has a path traversal vulnerability. An unauthenticated remote attacker can exploit this vulnerability to bypass …

Mitigation only
Fix from $1,950 2022-10-18
Rava Certificate Validation System HIGH 7.2
CVE-2022-39057

RAVA certificate validation system has insufficient filtering for special parameter of the web page input field. A remote attacker with administrator…

Mitigation only
Fix from $1,950 2022-10-18
Rava Certificate Validation System MEDIUM 5.3
CVE-2022-39055

RAVA certificate validation system has inadequate filtering for URL parameter. An unauthenticated remote attacker can perform SSRF attack to discover…

Mitigation only
Fix from $1,600 2022-10-18
Motp HIGH 8.8
CVE-2021-44161

Changing MOTP (Mobile One Time Password) system’s specific function parameter has insufficient validation for user input. A attacker in local area ne…

Mitigation only
Fix from $1,950 2021-12-29
Servisign HIGH 8.8
CVE-2020-3925

A Remote Code Execution(RCE) vulnerability exists in some designated applications in ServiSign security plugin, as long as the interface is captured,…

Fix: after 1.0.19.0617
Fix from $1,950 2020-02-03
Servisign HIGH 7.5
CVE-2020-3926

An arbitrary-file-access vulnerability exists in ServiSign security plugin, as long as the attackers learn the specific API function, they may access…

Fix: after 1.0.19.0617
Fix from $1,950 2020-02-03
Servisign HIGH 7.5
CVE-2020-3927

An arbitrary-file-access vulnerability exists in ServiSign security plugin, as long as the attackers learn the specific API function, they may access…

Fix: after 1.0.19.0617
Fix from $1,950 2020-02-03